Annex I — Procurement & Vendor Accreditation (PVAS) & Third‑Party Risk
Owner: Chief Operating Officer (COO) and Head of Procurement Co‑Owners: CISO, DPO,...
Annex H — Trademarks, Marks & Brand Usage Policy
Owner: General Counsel (GC) and Communications (Comms) Review cadence: Annual and upon...
Annex G — Open‑Source & IP Governance Policy
Owner: Chief Technology Officer (CTO) and General Counsel (GC) Review cadence: Annual...
Annex F — Vulnerability Management & Incident Response Playbook
Owner: Chief Information Security Officer (CISO) • Co‑Owners: SOC Lead, Head of...
Annex E — Information Security & Secure Development (Zero‑Trust / SLSA / SBOM)
Owner: Chief Information Security Officer (CISO) • Co‑Owners: Head of Engineering; Head...
Annex D — Sovereign Data Zone (SDZ) & Cross‑Border Transfers Policy
Global Baseline + Host‑Law Appendices Owner: Data Protection Officer (DPO) and Chief...
Annex C — Data Protection & Privacy Policy
Global Baseline + Host‑Law Appendices (PDPA/GDPR/nFADP et al.) Owner: Data Protection Officer...
Annex B — Regulatory Perimeter & Licensing Policy
Global Baseline + Host‑Law Appendices Owner: General Counsel (GC) & Chief Compliance...
Annex A‑SG — Singapore / APAC Host
Competition & Antitrust Hygiene — Companion Annex to Annex A (Global Baseline)...
Annex A — Competition & Antitrust Hygiene Policy
Applies equally to: All Nexus regional consortium operators and vehicles, including SNC...